ApplySarthi Match jobs to your CV

Security & Compliance Manager

Jobgether

Make my CV for this job, freeView job and applyYour CV, rewritten for this role using only your real experience. Sign in with Google and upload your CV. Nothing to install.

Skills named in this job

Read from the description itself, not inferred.

This role on the market

985 open compliance roles across 228 companies are on ApplySarthi right now, most of them in Bengaluru (87), Hyderabad (38), Delhi NCR (10).

IAM jobs

Jobgether has 3,942 open roles listed here.

Counted across 14 company job boards, updated as roles open and close.

Preparing for this interview

985 open compliance roles are hiring right now across 228 companies, mostly in Bengaluru — so the questions repeat. Practise them before you sit with Jobgether.

Questions you are likely to be asked

  1. Why do you want to join Jobgether?
  2. What is your experience with IAM? Tell me one thing you learned the hard way.
  3. How do you keep secrets and access safe in your infrastructure?
  4. Walk me through how code gets from a commit to production where you work.
  5. Tell me about an outage you handled. What did you learn from it?

Prep Sarthi gives you a free mock interview: an AI interviewer asks you questions like these out loud, from your own CV and this job, and shows your score and your weakest answer.

Practise the Security & Compliance Manager at Jobgether interview free →

Accountabilities: Own the daily operation of the security program, including Security Risk Assessment cadence, penetration-test coordination, remediation tracking, phishing simulations, and annual security-awareness training. Draft and maintain security policies and procedures for leadership review, ensuring documentation evolves alongside organizational and regulatory requirements. Lead vendor security assessments and Business Associate Agreement reviews across the third-party ecosystem. Monitor MDM and BYOD compliance, partnering with IT and managed service providers on device enrollment and endpoint-security status. Act as the day-to-day lead for incident and breach response, escalating matters to senior security leadership according to established response procedures. Support identity and access management improvements, including SSO implementation and deployment of a company-wide password manager. Prepare recurring security and compliance reporting for leadership and board-level discussions, including risk status and forward-looking roadmaps. Evaluate and implement compliance-automation platforms such as Drata, Vanta, or comparable solutions to support SOC 2 or HITRUST readiness. Track remediation actions from risk assessments, audits, and vendor reviews through completion using established security-program tracking processes. Establish and maintain AI security guardrails, including policies governing the handling of protected health information when using AI-enabled tools. Maintain comprehensive records covering security controls, risks, incidents, vendor assessments, remediation activities, and strategic initiatives. Build repeatable security and compliance processes that can scale with the organization while maintaining strong operational discipline. Requirements 3–6+ years of experience in security compliance, IT security, GRC, or a related field. Direct experience with HIPAA Security Rule requirements, Security Risk Assessments, and vendor or BAA risk reviews, preferably within healthcare or another regulated environment. Demonstrated ability to manage security calendars, coordinate multiple stakeholders, and drive remediation items through to closure. Experience working with a fractional or contractor CISO, managed service provider, or external security advisor. Ability to translate technical security risks and requirements into clear, concise communications for leadership and board-level audiences. Strong documentation, organization, project management, and follow-through skills. Ability to work independently and take ownership in a fast-paced, remote startup environment. Experience preparing for or achieving SOC 2 or HITRUST certification is a plus. Familiarity with compliance automation platforms such as Drata, Vanta, or similar tools is desirable. Experience with MDM and endpoint-security solutions, Google Workspace security controls such as DLP and Vault, and password-manager deployments is beneficial. Experience building security and compliance processes from scratch in an early-stage or high-growth organization is a plus. Familiarity with AI governance and security considerations, particularly for tools that may process protected health information, is desirable. Benefits Annual compensation range of $132,000–$140,000 . Fully remote work opportunity. Opportunity to take ownership of a growing security and compliance program. Exposure to HIPAA-regulated healthcare operations and AI-enabled technology. Opportunity to build scalable security processes and controls in a high-growth environment. Collaboration with senior security and product leadership. Potential to contribute to SOC 2 or HITRUST readiness and broader security-program maturity. Opportunity to shape practical governance and security standards for emerging AI use cases.

Match this job to your CV

ApplySarthi scores your CV against this role, shows the skills you are missing, and writes a tailored version for the application.

Check my match →

Similar open roles

Need answers during your interview? Try Live Sarthi.

Live Sarthi, an Interview Sarthi app, shows answer suggestions during the call.

Try Live Sarthi free →

A Windows app, from the same team as ApplySarthi.

Listed on lever · posted 2026-09-24. ApplySarthi collects openings and links to application pages; the role is advertised by Jobgether, not by us.